Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bug: DoS vulnerability in ws dependency #29953

Closed
Dan-C-Reed opened this issue Jun 19, 2024 · 2 comments
Closed

Bug: DoS vulnerability in ws dependency #29953

Dan-C-Reed opened this issue Jun 19, 2024 · 2 comments
Labels
Resolution: Stale Automatically closed due to inactivity Status: Unconfirmed A potential issue that we haven't yet confirmed as a bug

Comments

@Dan-C-Reed
Copy link

react-devtools-core has ws as a dependency and in release 8.17.1 ws have issued a fix to a DoS vulnerability (link). Would it be possible to upgrade to use this version of ws?

(Apologies if I have filed this in the incorrect place, but I was unclear on where these issues should be raised.)

React version: React DevTools 5.3.0

Steps To Reproduce

Link to code example:

Link

The current behavior

NA

The expected behavior

NA

@Dan-C-Reed Dan-C-Reed added the Status: Unconfirmed A potential issue that we haven't yet confirmed as a bug label Jun 19, 2024
Copy link

This issue has been automatically marked as stale. If this issue is still affecting you, please leave any comment (for example, "bump"), and we'll keep it open. We are sorry that we haven't been able to prioritize it yet. If you have any new additional information, please include it with your comment!

@github-actions github-actions bot added the Resolution: Stale Automatically closed due to inactivity label Sep 17, 2024
Copy link

Closing this issue after a prolonged period of inactivity. If this issue is still present in the latest release, please create a new issue with up-to-date information. Thank you!

@github-actions github-actions bot closed this as not planned Won't fix, can't repro, duplicate, stale Sep 24, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Resolution: Stale Automatically closed due to inactivity Status: Unconfirmed A potential issue that we haven't yet confirmed as a bug
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant